2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-7868 | — | — | 4.4% | Apr 14, 2017 | International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based... |
| CVE-2017-7867 | — | — | 4.6% | Apr 14, 2017 | International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based... |
| CVE-2017-7866 | — | — | 2.5% | Apr 14, 2017 | FFmpeg before 2017-01-23 has an out-of-bounds write caused by a stack-based buffer overflow related to the decode_zbuf f... |
| CVE-2017-7865 | — | — | 2.6% | Apr 14, 2017 | FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode... |
| CVE-2017-7864 | — | — | 3.8% | Apr 14, 2017 | FreeType 2 before 2017-02-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tt_size_re... |
| CVE-2017-7863 | — | — | 2.6% | Apr 14, 2017 | FFmpeg before 2017-02-04 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame_c... |
| CVE-2017-7862 | — | — | 2.6% | Apr 14, 2017 | FFmpeg before 2017-02-07 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame f... |
| CVE-2017-7861 | — | — | 2.9% | Apr 14, 2017 | Google gRPC before 2017-02-22 has an out-of-bounds write related to the gpr_free function in core/lib/support/alloc.c. |
| CVE-2017-7860 | — | — | 3.1% | Apr 14, 2017 | Google gRPC before 2017-02-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the parse_uni... |
| CVE-2017-7859 | — | — | 1.9% | Apr 14, 2017 | FFmpeg before 2017-03-05 has an out-of-bounds write caused by a heap-based buffer overflow related to the ff_h264_slice_... |
| CVE-2017-7858 | CRITICAL | 9.8 | 3.4% | Apr 14, 2017 | FreeType 2 before 2017-03-07 has an out-of-bounds write related to the TT_Get_MM_Var function in truetype/ttgxvar.c and ... |
| CVE-2017-7857 | CRITICAL | 9.8 | 3.6% | Apr 14, 2017 | FreeType 2 before 2017-03-08 has an out-of-bounds write caused by a heap-based buffer overflow related to the TT_Get_MM_... |
| CVE-2017-7856 | — | — | 3.5% | Apr 14, 2017 | LibreOffice before 2017-03-11 has an out-of-bounds write caused by a heap-based buffer overflow in the SVMConverter::Imp... |
| CVE-2017-7725 | MEDIUM | 6.1 | 2.8% | Apr 13, 2017 | concrete5 8.1.0 places incorrect trust in the HTTP Host header during caching, if the administrator did not define a "ca... |
| CVE-2017-7854 | — | — | 1.1% | Apr 13, 2017 | The consume_init_expr function in wasm.c in radare2 1.3.0 allows remote attackers to cause a denial of service (heap-bas... |
| CVE-2017-7853 | — | — | 2.5% | Apr 13, 2017 | In libosip2 in GNU oSIP 4.1.0 and 5.0.0, a malformed SIP message can lead to a heap buffer overflow in the msg_osip_body... |
| CVE-2017-7219 | — | — | 4.9% | Apr 13, 2017 | A heap overflow vulnerability in Citrix NetScaler Gateway versions 10.1 before 135.8/135.12, 10.5 before 65.11, 11.0 bef... |
| CVE-2017-7628 | — | — | 1.2% | Apr 13, 2017 | The "Smart related articles" extension 1.1 for Joomla! has SQL injection in dialog.php (attacker must use search_cats va... |
| CVE-2017-7627 | — | — | 0.7% | Apr 13, 2017 | The "Smart related articles" extension 1.1 for Joomla! does not prevent direct requests to dialog.php (there is a missin... |
| CVE-2017-7626 | — | — | 0.9% | Apr 13, 2017 | The "Smart related articles" extension 1.1 for Joomla! has XSS in dialog.php (n_art,type in GET Method). |
| CVE-2017-7748 | — | — | 2.8% | Apr 12, 2017 | In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the WSP dissector could go into an infinite loop, triggered by packet i... |
| CVE-2017-7747 | — | — | 2.5% | Apr 12, 2017 | In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the PacketBB dissector could crash, triggered by packet injection or a ... |
| CVE-2017-7746 | — | — | 2.5% | Apr 12, 2017 | In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SLSK dissector could go into an infinite loop, triggered by packet ... |
| CVE-2017-7745 | — | — | 2.5% | Apr 12, 2017 | In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the SIGCOMP dissector could go into an infinite loop, triggered by pack... |
| CVE-2017-7705 | — | — | 2.7% | Apr 12, 2017 | In Wireshark 2.2.0 to 2.2.5 and 2.0.0 to 2.0.11, the RPC over RDMA dissector could go into an infinite loop, triggered b... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now